1

Insider Risk Jobs in Oregon (NOW HIRING)

OR · On-site

Serve as the insider-risk technical lead and trusted advisor to USPTO stakeholders: run regular customer syncs, deliver polished status reporting, and proactively bring emerging requirements (CISA ...

... insider trading, market manipulation, off-channel communications, MNPI, bribery, and other supervisory risk areas. The ideal candidate for this position will possess the ability to perform both ...

TAMs are accountable for translating Varonis capabilities into reduced risk, controlled access, and ... insider threats, cyber-attacks, and policy violations * Help customers identify and mitigate risks ...

TAMs are accountable for translating Varonis capabilities into reduced risk, controlled access, and ... insider threats, cyber-attacks, and policy violations * Help customers identify and mitigate risks ...

... Insider, Forbes, and Gartner to name a few. We have huge ambitions and are looking for stellar ... Perform risk assessments to identify gaps, come up with recommendations, and drive the gaps to ...

OR · On-site

As an Incubated Founder, we'll work with you to take one risk from a rough problem statement to a ... insider threats, and even misaligned AIs themselves - actors who may have enormous resources ...

Develop and implement securities law compliance program and insider trader policies. Develop and ... Operate with a strategic, pragmatic mindset with ability to balance legal risk management with ...

Work closely with our team to craft tailored funding strategies, leveraging insider knowledge of ... Risk Management. Identify business and project risks associated with grant funding agencies, and ...

Insider Risk information

What are the key skills and qualifications needed to thrive as an insider risk analyst, and why are they important?

To thrive as an Insider Risk Analyst, you need a solid background in information security, risk assessment, and data analysis, often supported by a degree in cybersecurity or a related field. Familiarity with security information and event management (SIEM) tools, user behavior analytics, and certifications such as CISSP or CISA are commonly required. Strong analytical thinking, discretion, and communication skills are crucial for identifying threats and collaborating with cross-functional teams. These skills ensure prompt detection and mitigation of internal security threats, protecting organizational assets and data integrity.

What is an insider risk professional?

An Insider Risk professional is responsible for identifying, assessing, and mitigating threats posed by individuals within an organization, such as employees, contractors, or business partners. These threats can include data theft, fraud, sabotage, or unintentional errors that could harm the company. Insider Risk professionals develop policies, monitor user behavior, and implement security controls to protect sensitive information and assets. Their goal is to balance organizational security with privacy and productivity.

What is the difference between Insider Risk vs Insider Threat Analyst?

AspectInsider RiskInsider Threat Analyst
Primary FocusIdentifying and managing potential risks posed by insiders to prevent security breachesDetecting, analyzing, and responding to insider threats and security incidents
Required CredentialsSecurity certifications (CISSP, CISA), risk management experienceCybersecurity certifications (CEH, GIAC), threat analysis experience
Work EnvironmentRisk management teams, security departments, corporate settingsSecurity operations centers, incident response teams, cybersecurity units

Insider Risk professionals focus on proactively identifying and mitigating potential insider-related threats, emphasizing risk management strategies. In contrast, Insider Threat Analysts are more involved in detecting and responding to actual threats and security incidents. Both roles require cybersecurity knowledge and certifications but differ in their primary responsibilities within security teams.

What are some common challenges faced by professionals in insider risk roles, and how can they be addressed?

Professionals in Insider Risk roles often face challenges such as balancing employee privacy with security needs, detecting subtle behavioral indicators of risk, and fostering a culture of trust while enforcing policies. Addressing these challenges requires strong communication skills, collaboration with HR and IT departments, and the utilization of advanced monitoring tools that respect privacy regulations. Additionally, ongoing training and clear protocols help teams respond effectively while maintaining organizational transparency.

What does an insider risk analyst do?

An insider risk analyst monitors and investigates potential threats from employees or trusted individuals who may intentionally or unintentionally compromise an organization’s security. They analyze data, use security tools, and develop strategies to detect, prevent, and respond to insider threats, often working with cybersecurity and compliance teams. Strong analytical skills and knowledge of security protocols are essential for this role.
What are the most commonly searched types of Insider Risk jobs in Oregon? The most popular types of Insider Risk jobs in Oregon are:
What are popular job titles related to Insider Risk jobs in Oregon? For Insider Risk jobs in Oregon, the most frequently searched job titles are:
Infographic showing various Insider Risk job openings in Oregon as of July 2026, with employment types broken down into 80% Full Time, 6% Part Time, 2% Contract, 11% Nights, and 1% Summer. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution.

Insider Threat Technical Lead

9th Way Insignia

OR • On-site

Other

Posted 8 days ago


Job description

Position Overview

9th Way Insignia is seeking a hands-on Insider Threat Technical Lead to serve as the technical lead for an established Insider Risk program supporting the United States Patent and Trademark Office (USPTO). This is an individual-contributor technical leadership role - not a management position. You will be the senior technical voice on a small delivery team, guiding insider-risk analysts, advising government data owners and program leadership, and personally building and tuning the Microsoft security tooling the program runs on.

What You Will Do
  • Serve as the insider-risk technical lead and trusted advisor to USPTO stakeholders: run regular customer syncs, deliver polished status reporting, and proactively bring emerging requirements (CISA directives, NIST guidance, AI policy) to the customer with an implementation path.
  • Own the technical direction of the insider-risk toolset in Microsoft Purview: Insider Risk Management policies, indicators, trigger events, sequence detection, privacy/anonymization settings, role groups and permissions, DLP, sensitivity labels and auto-labeling, eDiscovery/legal holds, and unified audit log analysis.
  • Design and maintain custom dashboards, workbooks, and playbooks in Microsoft Sentinel; work across the program's additional SIEMs (QRadar, Splunk) and custom Microsoft UBA rule engines; investigate and triage insider-risk alerts alongside the analysts and guide them on findings.
  • Build, edit, and troubleshoot Power Automate flows that drive program automation (the program currently operates 50+ production flows), using KQL, JSON, and YAML.
  • Advise the customer on securing Microsoft 365 Copilot adoption: Purview Data Security Posture Management, permission and sharing remediation, restricted content discovery, acceptable-use and DLP policy alignment, and NIST AI RMF alignment.
  • Define, track, and brief insider-risk program KPIs to leadership (alert volume and fidelity, true/false positive rates, MTTD/MTTR, repeat offenders, exfiltration channels, departmental trends) and recommend program improvements.
  • Mentor and technically guide the program's insider-risk analysts; answer their questions on data findings and investigation paths.
  • Operate effectively in an environment where backend administration is held by government teams: the program performs front-end policy configuration and monitoring, and works through USPTO administrators for backend changes. Patience and influence without direct admin access are essential.
Required Qualifications 
  • Bachelor's degree from an accredited institution in Information Technology, Computer Science, Information Systems Management, Cybersecurity, or a related field. 
  • Seven (7) years of specialized experience in one or more of the following: Cyberspace Operations, Network Security, Computer Forensics, Network Forensics, Computer Network Defense (CND), Attack Sensing & Warning (AS&W), Intelligence Analysis, Cyber Threat Hunting, Penetration Testing, Insider Threat Detection/Mitigation, or Incident Detection & Response. Candidates holding a Master's degree from an accredited institution in information technology, information assurance, information systems management, cybersecurity, or a related field may substitute that degree for two (2) years of experience, reducing the requirement to five (5) years of specialized experience.
  • Primary certification - must currently hold one (1) of: CISSP or GIAC Security Expert (GSE).
  • Secondary certification - in addition to the primary certification above, must currently hold one (1) or more of: GIAC Certified Detection Analyst (GCDA); GIAC Certified Intrusion Analyst (GCIA); GIAC Certified Forensic Analyst (GCFA); GIAC Cyber Threat Intelligence (GCTI); GIAC Network Forensic Analyst (GNFA); GIAC Penetration Tester (GPEN); GIAC Reverse Engineering Malware (GREM).
  • Active SECRET clearance, or the ability to obtain and maintain one. 
Location

Remote